]> git.ipfire.org Git - thirdparty/openssl.git/history - ssl/t1_lib.c
Don't alow TLS v1.0 ciphersuites for SSLv3
[thirdparty/openssl.git] / ssl / t1_lib.c
2015-11-14  Dr. Stephen HensonDon't alow TLS v1.0 ciphersuites for SSLv3
2015-11-09  Matt CaswellRemove redundant check from tls1_get_curvelist
2015-11-09  Matt CaswellStandardise our style for checking malloc failures
2015-11-08  Dr. Stephen HensonUse uint32_t and int32_t for SSL_CIPHER structure.
2015-11-02  Matt CaswellRemove a trivially true OPENSSL_assert
2015-10-30  Matt CaswellMove in_handshake into STATEM
2015-10-23  Alessandro GhediniRemove useless code
2015-10-07  Matt CaswellDon't advance PACKET in ssl_check_for_safari
2015-10-05  Alessandro GhediniValidate ClientHello extension field length
2015-10-05  Emilia Kasperssl3_get_client_hello: rearrange logic
2015-09-17  Emilia KasperRemove PACKET_(get|goto)_bookmark
2015-09-07  Matt CaswellPACKETise ServerHello processing
2015-08-14  Matt CaswellFix session tickets
2015-08-13  Matt CaswellEnhance PACKET readability
2015-08-10  Rich SalzRT3999: Remove sub-component version strings
2015-08-03  Matt CaswellPACKETise ClientHello processing
2015-07-30  Dr. Stephen HensonMake auto DH work with DHEPSK
2015-07-30  Dr. Stephen HensonCheck for kECDH with extensions.
2015-07-30  Dr. Stephen HensonDisable all PSK if no callback.
2015-07-28  Dr. Stephen HensonAllow any order for signature algorithm string.
2015-07-18  Dr. Stephen HensonUse uint32_t consistently for flags.
2015-06-12  Adam LangleyAllow a zero length extension block
2015-06-10  Matt CaswellTighten extension handling
2015-06-04  Kurt RoeckxAllow all curves when the client doesn't send an suppor...
2015-05-26  Matt CaswellDon't check for a negative SRP extension size
2015-05-22  Matt CaswellRemove support for OPENSSL_NO_TLSEXT
2015-05-20  Emilia KasperOnly support >= 256-bit elliptic curves with ecdh_auto...
2015-05-19  Dr. Stephen Hensonmove masks out of CERT structure
2015-05-18  Dr. Stephen HensonMove certificate validity flags out of CERT.
2015-05-18  Dr. Stephen HensonMove signing digest out of CERT.
2015-05-18  Dr. Stephen HensonCERT tidy
2015-05-16  Matt CaswellVersion negotiation rewrite cleanup
2015-05-13  Matt CaswellRemove Kerberos support from libssl
2015-05-07  Rich SalzUse "==0" instead of "!strcmp" etc
2015-05-06  Gunnar KudrjavetsInitialize potentially uninitialized local variables
2015-05-03  Dr. Stephen HensonAdd OSSL_NELEM macro.
2015-05-01  Rich Salzfree null cleanup finale
2015-04-30  Rich Salzfree NULL cleanup 5a
2015-04-16  Viktor DukhovniCode style: space after 'if'
2015-03-26  Matt CaswellRemoved dependency on rrec from heartbeat processing
2015-03-26  Matt CaswellEncapsulate s->s3->rrec
2015-03-25  Matt CaswellResolve swallowed returns codes
2015-03-25  Matt CaswellRAND_bytes updates
2015-03-23  Matt CaswellFix missing return value checks
2015-03-23  Matt CaswellDon't check curves that haven't been sent
2015-03-19  Dr. Stephen HensonFix for CVE-2015-0291
2015-03-12  Matt CaswellSSL_check_chain fix
2015-03-11  Rich SalzMerge OPENSSL_NO_EC{DH,DSA} into OPENSSL_NO_EC
2015-02-06  Rich Salzdead code cleanup: #if 0 in ssl
2015-02-03  Dr. Stephen HensonExtended master secret extension support.
2015-01-28  Rich SalzRemove support for opaque-prf
2015-01-27  Rich SalzOPENSSL_NO_xxx cleanup: SHA
2015-01-24  Kurt RoeckxFix segfault with empty fields as last in the config.
2015-01-22  Matt CaswellRe-align some comments after running the reformat script.
2015-01-22  Matt CaswellRun util/openssl-format-source -v -c .
2015-01-22  Matt Caswellindent has problems with comments that are on the right...
2015-01-22  Matt CaswellFix source where indent will not be able to cope
2015-01-05  Piotr SikoraFix building with no-srtp
2015-01-02  Dr. Stephen HensonClear existing extension state.
2014-12-31  Cristian Rodríguezconstify tls 1.2 lookup tables.
2014-12-30  Tim Hudsonmark all block comments that need format preserving...
2014-12-16  Matt CaswellAdd OPENSSL_NO_ECDH guards
2014-12-10  Jonas Maebetls1_heartbeat: check for NULL after allocating buf
2014-12-10  Jonas Maebetls1_process_heartbeat: check for NULL after allocating...
2014-12-08  Dr. Stephen HensonRemove some unnecessary OPENSSL_FIPS references
2014-12-05  Emilia KasperClarify the return values for SSL_get_shared_curve.
2014-12-05  Emilia KasperAdd extra checks for odd-length EC curve lists.
2014-12-05  Emilia KasperReject elliptic curve lists of odd lengths.
2014-11-20  Dr. Stephen HensonFix SuiteB chain checking logic.
2014-11-20  Emilia KasperEnsure SSL3_FLAGS_CCS_OK (or d1->change_cipher_spec_ok...
2014-11-20  Emilia KasperReset s->tlsext_ticket_expected in ssl_scan_serverhello...
2014-11-19  Dr. Stephen HensonOnly handle RI extension for SSLv3
2014-11-19  Dr. Stephen HensonProcess signature algorithms before deciding on certifi...
2014-11-18  Matt CaswellAdded references to RFC 7027
2014-11-18  Dr. Stephen HensonPrevent use of binary curves when OPENSSL_NO_EC2M is...
2014-11-18  Matt CaswellUpdated comment references to draft-ietf-tls-ecc-12...
2014-10-24  Dr. Stephen HensonProcess signature algorithms in ClientHello late.
2014-10-15  Dr. Stephen HensonFix for session tickets memory leak.
2014-10-15  Matt CaswellFix for SRTP Memory Leak
2014-10-10  Dr. Stephen HensonDisable encrypt them mac for SSL 3.0 and stream ciphers...
2014-09-30  Dr. Stephen HensonParse custom extensions after internal extensions.
2014-08-28  Dr. Stephen HensonNew extension callback features.
2014-08-28  Dr. Stephen HensonRemove serverinfo checks.
2014-08-28  Dr. Stephen HensonAdd custom extension sanity checks.
2014-08-28  Dr. Stephen HensonCustom extension revision.
2014-08-18  Justin BlanchardRT1815: More const'ness improvements
2014-08-15  Rich SalzMerge branch 'master' of git.openssl.org:openssl
2014-08-15  Dr. Stephen HensonRevision of custom extension code.
2014-08-06  Dr. Stephen HensonFix SRP ciphersuite DoS vulnerability.
2014-08-06  Gabor TyukaszFix race condition in ssl_parse_serverhello_tlsext
2014-07-01  Ben LaurieFix possible buffer overrun.
2014-06-29  Ben LaurieMore constification.
2014-06-29  Rich SalzMerge branch 'master' of git.openssl.org:openssl
2014-06-29  Dr. Stephen HensonFix memory leak.
2014-06-02  David BenjaminCheck there is enough room for extension.
2014-06-01  Dr. Stephen HensonOption to disable padding extension.
2014-05-26  Juli MallettFix cast of boolean where cast of LHS intended.
2014-05-20  Dr. Stephen HensonFix bug in signature algorithm copy.
2014-04-07  Dr. Stephen HensonAdd heartbeat extension bounds check.
2014-04-05  Dr. Stephen HensonSet TLS padding extension value.
next